Перейти к отчёту о безопасности
⚠️
Этот домен был отмечен как вредоносный
Механизмы безопасности сообщают об обнаружении: 18. Будьте предельно осторожны — не вводите учетные данные или личную информацию.
Безопасность домена и анализ угроз

ddbqianbaoappxiazai[.]com[.]cn

“DDB钱包APP下载 - 数字钱包|安全便捷的移动支付平台”

Вердикт по угрозе Критический 95/100 оценка доказательств
Доступность Непроверенный Текущая доступность не проверена
Всего обнаружений вирусов: 18/91 URLQuery threat systems: 3 alerts
OTX: 1 ref 15.06.2026
Краткий обзор отчёта

ddbqianbaoappxiazai.com.cn — Непроверенный. Сводка доказательств: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 3 alerts; PhishDestroy score 95/100.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Сводка доказательств
КРИТИЧЕСКИЙ
Ссылка
C709FAC6
Оценка
95/100

The domain ddbqianbaoappxiazai.com.cn is currently active and engaged in credential theft targeting users of mobile payment platforms. Analysis indicates the infrastructure is designed to harvest login credentials, payment details, and personal information under the guise of a legitimate digital wallet application. The page title, "DDB钱包APP下载 - 数字钱包|安全便捷的移动支付平台," explicitly mimics branding associated with digital payment services, suggesting an intent to deceive users into disclosing sensitive financial data. Infrastructure analysis reveals the domain was registered on May 24, 2026, a future date that may indicate an attempt to evade detection or exploit registrar anomalies. As of the latest assessment, the domain is flagged by 16 of 95 security vendors on VirusTotal, with one confirmed entry on a security blocklist. The registrar details and hosting IP remain undisclosed in public records, but the domain's active status and low detection threshold suggest it is operating with minimal scrutiny. No legitimate association with known digital wallet providers has been established, reinforcing the classification of this as a malicious credential theft operation. Current status confirms the domain remains active and accessible, posing an ongoing risk to users seeking mobile payment applications. Organizations and individuals are advised to block access to this domain at the network level and implement real-time monitoring for related indicators of compromise. Users who may have interacted with the site should immediately reset credentials for financial accounts, enable multi-factor authentication, and scan devices for potential malware. Security teams are encouraged to correlate this domain with other known phishing infrastructure using the unique seed c709fa for broader threat hunting and mitigation efforts.

VirusTotal
VirusTotal
18 det.
URLQuery
URLQuery
3 threat alerts
OTX references
Сертификат TLS
Let's Encrypt / YE2
Возраст
3 mo New
Зафиксированный статус
Непроверенный
PhishDestroy
DestroyList
В списке
Охват данных VirusTotal 18 / 91 URLQuery 3 threat-system alerts PhishStats не проверено OTX 1 community reference CF Radar scan completed URLScan capture not submitted URLScan verdict вердикт недоступен DNS-блокировки не проверено TLS valid certificate, 30d WHOIS 3 mo old Снимок экрана stored capture Цепочка перенаправлений не исследовано
Данные сетевой безопасности
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS ddbqianbaoappxiazai.com.cn malicious Sinkholed
Hagezi Threat Feed ddbqianbaoappxiazai.com.cn malicious Sinkholed
DNS4EU ddbqianbaoappxiazai.com.cn malicious Sinkholed

Процесс реагирования на угрозы

Открытие
Checks
Reports
Доступность
9/11

Статус в публичных блок-листах

Сохранённый снимок

Заголовок страницы
DDB钱包APP下载 - 数字钱包|安全便捷的移动支付平台
Сертификат TLS
Valid transport encryption · Выдан Let's Encrypt / YE2 · valid for 30 days

Аналитика доменов

Домен
Сервер / ASN nginx · AS139880 OWGELS INTERNATIONAL CO., LIMITED
Репутация IP abuse score 0/100 0 reports checked 07.08.2026
IP-адрес 154.194.143.133 HK
ГеолокацияHK Chai Wan, HK
СетьAS139880 · Starbow Ltd
Обратный поиск IPviewdns.info → rapiddns.io →
РегистрацияСоздано 24.05.2026 (88d · New)
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено15.06.2026
TLS Fingerprint
TLS Observationvalid from 22.06.2026scanned 09.07.2026
Favicon Hash
Технологии · 3 identified
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com 100% уверенности
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% уверенности
HSTS
Безопасность

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% уверенности
Detected via Cloudflare Radar · Wappalyzer engine
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

18 / Поставщики средств безопасности 91 отметили этот домен
View on VT
Last analyzed Previous stored snapshot: 16 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
Cluster25
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
«Касперский»
Lionic
SOCRadar
Sophos
VIPRE
Webroot

Доказательства и внешние отчеты

Повлиял ли на вас этот сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.

Европол
Найдите официальный канал отчетности для вашей страны ЕС
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Преступники могут снова связаться с жертвами, притворяясь следователями, адвокатами или агентами по восстановлению. Не платите авансовые платежи и не делитесь учетными данными. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.

Каталог 97 стран
Черновик по шаблону • помощь AI с формулировками включается только с отдельного согласия. Просмотрите и отправьте его самостоятельно

Проверить любой домен

Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.

Сканировать сейчас

Сообщить о фишинге

Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество

Сообщить

Поток оперативных данных об угрозах

Недавние сообщения о фишинге и наблюдаемые изменения доступности

Отслеживать

Будьте в курсе событий, берегите себя

Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание

Поток оперативных данных об угрозах Подать жалобу на это объявление
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/ddbqianbaoappxiazai.com.cn"
  title="PhishDestroy threat report for ddbqianbaoappxiazai.com.cn"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>